JustCV

Last updated: 2026-06-30

Privacy Policy

This policy explains how JustCV handles sign-in data, service telemetry, and resume data stored in your browser.

1. Information We Collect

When you sign in with Google, we may receive basic profile information such as your name, avatar, and email address to identify your account and complete authentication.

When you edit a resume, the resume content, settings, and template selection are stored in your browser local storage by default so you can continue later.

We keep necessary technical logs and daily action counts. We also use a random identifier valid for 30 minutes within your browser tab to connect an allowlisted entry page, channel category, first editor visit and file generation. Session records older than 90 days are deleted when new analytics requests arrive. These records exclude email, user IDs, IP addresses, resume or job-description content, full referrer URLs and arbitrary query parameters.

If you start checkout, we associate the anonymous session with an order identifier to measure server-verified payment conversion. Analytics does not collect card details. Payment records are retained separately as needed for payment processing and accounting.

2. How We Use Information

We use sign-in information to maintain your session, show your account profile, and help protect your editing data from unauthorized access.

We use locally stored resume data to restore your work, remember language and theme preferences, and enable template, export, and sharing features.

We use technical logs to troubleshoot issues, prevent abuse, and analyze service performance. Anonymous daily aggregates help identify obvious drop-offs across visits, starting a resume, sign-up, resume creation, and export.

3. Local Storage and Resume Content

JustCV stores core editing content primarily in your browser environment. In practice, this means your drafts are usually available on the same device and browser, but clearing browser data may remove them permanently.

If sign-in or future sync features are enabled, some account-linked data may be processed or stored server-side for a limited time to support authentication, access recovery, or multi-device functionality.

Please avoid placing unnecessary sensitive information in your resume, such as full government ID numbers, bank account numbers, health data, or other highly sensitive personal data.

4. When We Share Information

We do not sell your personal information or use it for unrelated advertising purposes unless required to provide the service, comply with the law, or protect the legitimate rights of JustCV and its users.

When third-party providers support authentication, infrastructure hosting, security, or error monitoring, they may access only the data reasonably necessary to perform those services.

When you confirm job tailoring, we send eligible resume descriptions, skills, and the job description to OpenRouter and its model provider. Name and contact fields, photos, and hidden sections are excluded from model input; personal details written inside descriptions may still be sent, so remove them first. We do not save job descriptions or unaccepted suggestions in our database. A tailored copy you choose to save is stored like any other resume. Account identifiers and request timestamps are separately recorded to enforce usage limits. Providers process data under their own policies.

If a business transfer, reorganization, or lawful disclosure requirement occurs, we will take reasonable steps to protect your information to the extent required by applicable law.

5. Data Retention

Data stored in browser local storage remains there until you delete it, clear browser data, or the product migrates its storage format during an upgrade.

Server-side records related to authentication, security, or billing are retained only for the shortest reasonable period needed to fulfill their original purpose, then deleted or anonymized.

Where the law requires a longer retention period, we may keep the relevant information for that purpose and limit its use accordingly.

6. Security Measures

We use reasonable administrative, technical, and organizational safeguards to reduce the risk of unauthorized access, disclosure, alteration, or loss, including session controls, least-privilege access, and basic transport security.

No internet service can guarantee absolute security. You are responsible for protecting your device, browser environment, and third-party sign-in account, especially on shared or public devices.

If you believe your account or data may be compromised, stop using the affected device and contact us through an official support channel as soon as possible.

7. Your Rights and Choices

You can delete locally stored browser data, sign out, stop using the service, or ask whether we still hold server-side information related to your account.

Where applicable law permits, you may also have rights to access, correct, delete, restrict, or object to the processing of your personal information.

If you want to exercise these rights, please use an official contact channel published by the service and provide enough information for us to verify your request.

8. Policy Updates

We may update this policy to reflect product changes, legal requirements, or operational needs. The latest version will be posted on this page with an updated effective date.

If an update materially affects your rights or the way we process information, we will provide notice through the product or another appropriate channel when reasonable to do so.